Sample viewer

vx.netlux.org/Virus.DOS.Otaka.1641

.

GIF

Syscalls:

Time Syscall Op Syscall Name
2018-12-17T22:46:55.707558824Z 37 PC: 13cab | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:46:55.709120211Z 25 PC: 13cb0 | Get default drive
2018-12-17T22:46:55.710162286Z 82 PC: 13cbc | Get DOS internal pointers (SYSVARS)
2018-12-17T22:46:55.711297699Z 53 PC: 13d1a | Get interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:46:55.712869813Z 53 PC: 13d26 | Get interrupt vector (Interrupt = '19' AKA 'Delete file')
2018-12-17T22:46:55.714145908Z 37 PC: 13d49 | Set interrupt vector (Interrupt = '1' AKA 'Character input')
2018-12-17T22:46:55.716455088Z 255 PC: 13d78 | UNKNOWN!
2018-12-17T22:46:55.718253782Z 37 PC: 13d87 | Set interrupt vector (Interrupt = '33' AKA 'Random read')
2018-12-17T22:46:55.719659209Z 48 PC: 1415b | Get DOS version
2018-12-17T22:46:55.720782098Z 9 PC: 12a5c | Display string (Could not find end pointer)
2018-12-17T22:46:55.724394123Z 76 PC: 12a61 | Terminate with return code (Return code = '0')